thumbnail CVE-2022-21661: Exposing Database Info via WordPress SQL Injection